Reload secure settings with password - ElasticSearch - [issue]
...This change adds support for passing a password in the call to the reload_secure_settings API. Transport and TransportService now expose methods to indicate if the Transport implementation u...    Author: jkakavas , 2019-06-24, 10:43
Disregard default protocol port when builing SAML ACS url - Kibana - [issue]
...Kibana uses the configuration set for in order to construct the Assertion Consumer Service URL that it subsequently passes in a request to Elasticsearch. Elasticsearch ...    Author: jkakavas , 2019-06-19, 19:16
SetSingleNodeAllocateStepTests.testPerformActionAttrsRequestFails failure - ElasticSearch - [issue]
...Failure:org.elasticsearch.xpack.core.indexlifecycle.SetSingleNodeAllocateStepTests > testPerformActionAttrsRequestFails FAILED08:57:18     java.lang.AssertionError: Unexpected m...    Author: jkakavas , 2019-06-18, 22:22
Add OIDC authentication Integration Tests - ElasticSearch - [issue]
...This change introduces an OpenID Connect Provider in idp-fixturethat uses the existing openldap server for authentication andas a user info repository.It also adds tests where a mock facilit...    Author: jkakavas , 2019-06-18, 12:52
[WIP] Add BouncyCastleFipsProvider as test dependency - ElasticSearch - [issue]
...This commit sets up a fake ivy repository to use for adding theJAR that provides the BCFIPS Security Provider as atestRuntimeOnly dependency in all test tasks.It also disables jarHell task f...    Author: jkakavas , 2019-06-17, 18:09
Per index data path setting - ElasticSearch - [issue]
...We should document the settings that enable setting a per index data pathTasks: Revisit the implementation of per index data paths (from shadow replicas) and the name of the current set...    Author: jkakavas , 2019-06-17, 17:20
OpenID Connect realm support - ElasticSearch - [issue]
...This issue tracks the effort to offer an OpenID Connect authentication realm in Elasticsearch.Relevant specifications:OpenID Connect coreOpenID Connect dynamic registrationImplementer's draf...    Author: jkakavas , 2019-06-17, 17:20
Implement retries wherever applicable in TokenService - ElasticSearch - [issue]
...We currently do not retry for TransportActions#isShardNotAvailableException everywhere in the TokenService implementation. We should go through the remaining places and ensure that we implem...    Author: jkakavas , 2019-06-17, 17:19
Document SAML APIs - ElasticSearch - [issue]
...Document _security/saml/prepare ,  _security/saml/authetnticate ,  _security/saml/logout , _security/saml/invalidate  APIs so that it is easier for custom web applications (ap...    Author: jkakavas , 2019-06-17, 17:19
Change default NameID Policy for SAML Authentication requests - ElasticSearch - [issue]
...We set NameIDPolicy to urn:oasis:names:tc:SAML:2.0:nameid-format:transient by default in our SAML Authentication Requests. Since NameIDPolicy is optional, we probably should not be making th...    Author: jkakavas , 2019-06-17, 17:19